PRMitM: Attackers Can Hide Password Resets Inside Account Registrations

PRMitM attack

A research paper published by four Israeli scientists details a new attack called PRMitM, or the “Password Reset Man-in-the-Middle,” in which attackers hide password reset interactions for a user’s legitimate profile inside account registration interactions on another site.

Read more

Leave a Comment

Your email address will not be published. Required fields are marked *